SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4.07 and earlier, allows remote attackers to execute arbitrary stored procedures via the Email variable.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/11981http://packetstormsecurity.org/0305-exploits/snitz_exec.txthttp://marc.info/?l=bugtraq&m=105277599131134&w=2http://secunia.com/advisories/35733http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0067.htmlhttp://osvdb.org/56166http://www.securityfocus.com/bid/35764http://www.securityfocus.com/bid/7549